PDF Converter

Pass

Audited by Gen Agent Trust Hub on Mar 9, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill provides instructions for the agent to process and convert external document formats, creating a potential surface for indirect prompt injection if those files contain malicious instructions.\n
  • Ingestion points: Document conversion requests involving PDF, DOCX, XLSX, and HTML files provided by the user (SKILL.md).\n
  • Boundary markers: None; the skill does not define specific delimiters or instructions to treat file content as untrusted data.\n
  • Capability inventory: Integrates with the office-mcp server, which provides file conversion tools (pdf_to_docx, docx_to_pdf, html_to_pdf).\n
  • Sanitization: No sanitization or content validation steps are outlined in the conversion guidelines.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 9, 2026, 08:21 AM